Online Template Attacks: Revisited
Alejandro Cabrera Aldaya, Billy Bob Brumley

TL;DR
This paper revisits online template attacks (OTAs), demonstrating their effectiveness against microarchitecture signals and revealing new attack features, including backward attacks, across multiple cryptographic libraries, emphasizing the need for secure-by-default implementations.
Contribution
It introduces a generic OTA framework for microarchitecture signals, uncovers new attack capabilities like backward attacks, and evaluates their effectiveness on real cryptographic libraries.
Findings
OTAs can work with microarchitecture signals, not just power/EM.
Single-trace attacks can recover complete secret keys.
Backward OTA attacks are feasible and effective.
Abstract
An online template attack (OTA) is a powerful technique previously used to attack elliptic curve scalar multiplication algorithms. This attack has only been analyzed in the realm of power consumption and EM side channels, where the signals leak related to the value being processed. However, microarchitecture signals have no such feature, invalidating some assumptions from previous OTA works. In this paper, we revisit previous OTA descriptions, proposing a generic framework and evaluation metrics for any side-channel signal. Our analysis reveals OTA features not previously considered, increasing its application scenarios and requiring a fresh countermeasure analysis to prevent it. In this regard, we demonstrate that OTAs can work in the backward direction, allowing to mount an augmented projective coordinates attack with respect to the proposal by Naccache, Smart and Stern (Eurocrypt…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
